bhanuuu
SOC Analyst L1 & L2
About
Having 1.6+ years of experience as a SOC ANALYST L1 & L2 in the field of Cyber security Operations for 24*7 SOC environment using the SIEM tools Crowdstrike NG-SIEM, Azure Sentinel Splunk Enterprise, ELK, Microsoft XDR, EntraID, Palo Alto XSOAR, Qualys Guard VMDR, Netskope & CrowdStrike DLP, MS Purview DLP, Crowdstrike XDR, Cisco AMP XDR and Mimecast email gateway.
Skills & Expertise (17)
Work Experience
SOC Analyst L1 & L2
NTT Data (MSSP)
Nov 2024 - Present
Perform root-cause analysis of incident and working with eradication upon client approvals. Working with CS NG-SIEM integration, and create dashboards and Security correlation rules. Perform threat hunting to identify adversaries’ tactics and techniques and working with client hunting tasks on daily basis. Serving as the DLP SME, responsible for monitoring and analyzing data loss prevention events including web uploads, USB file transfers, and email release requests. Ensuring policy compliance and validating user activities to mitigate data exfiltration risks. Actively monitoring and investigating security events from multiple log sources (Firewalls, IDS/IPS, Endpoint, Proxy, Servers) using XSOAR, Elastic and CrowdStrike. Perform initial triage, in-depth analysis, and threat validation of alerts related to malware, phishing, data exfiltration, and lateral movement. Collaborate with clients, SPOCs, and vendors via bridge calls to manage high-severity security incidents, ensuring timely containment, remediation, and effective communication. Conducted malware and phishing investigations, email header analysis, and IOC Fine tuning.
Education
Bachelor of Technology in Electronics and Communication Engineering - Guru Nanak Institute of Technology
2021 - 2025 · Afghanistan
Certifications
No certifications added yet
Interested in this developer?
Profile Score Breakdown
Profile Overview
Availability Details
Relocation
Depends on Offer
Skills (17)
Click a skill to find developers with the same skill